[NeurIPS 2024] Official implementation for "AgentPoison: Red-teaming LLM Agents via Memory or Knowledge Base Backdoor Poisoning"
☆240Aug 16, 2026Updated 2 weeks ago
Alternatives and similar repositories for AgentPoison
Users that are interested in AgentPoison are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- [USENIX Security 2025] PoisonedRAG: Knowledge Corruption Attacks to Retrieval-Augmented Generation of Large Language Models☆298Jan 27, 2026Updated 7 months ago
- Code&Data for the paper "Watch Out for Your Agents! Investigating Backdoor Threats to LLM-Based Agents" [NeurIPS 2024]☆118Sep 27, 2024Updated last year
- [NeurIPS'24] RedCode: Risky Code Execution and Generation Benchmark for Code Agents☆87Aug 19, 2026Updated last week
- Agent Security Bench (ASB)☆292Apr 16, 2026Updated 4 months ago
- ☆25Jan 6, 2025Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- ☆36Feb 27, 2025Updated last year
- Memory Injection Attacks on LLM Agents via Query-Only Interaction☆35Aug 11, 2026Updated 2 weeks ago
- [EMNLP'24] EHRAgent: Code Empowers Large Language Models for Complex Tabular Reasoning on Electronic Health Records☆141Dec 26, 2024Updated last year
- Source code for the ACL'2025 paper titled "Unveiling privacy risks in llm agent memory"☆35Dec 2, 2025Updated 8 months ago
- A Dynamic Environment to Evaluate Attacks and Defenses for LLM Agents.☆779Jun 2, 2026Updated 2 months ago
- ☆164Jul 2, 2024Updated 2 years ago
- ICL backdoor attack☆17Nov 4, 2024Updated last year
- [EMNLP 2023] Poisoning Retrieval Corpora by Injecting Adversarial Passages https://arxiv.org/abs/2310.19156☆51Dec 14, 2023Updated 2 years ago
- PISmith: Reinforcement Learning-based Red Teaming for Prompt Injection Defenses☆27Updated this week
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- ☆15Jul 2, 2026Updated last month
- This repository provides a benchmark for prompt injection attacks and defenses in LLMs☆486Oct 29, 2025Updated 10 months ago
- ☆80Jun 18, 2026Updated 2 months ago
- Working Memory Attack on LLMs☆18May 27, 2025Updated last year
- ☆48Dec 9, 2025Updated 8 months ago
- [ECCV'24 Oral] The official GitHub page for ''Images are Achilles' Heel of Alignment: Exploiting Visual Vulnerabilities for Jailbreaking …☆38Oct 23, 2024Updated last year
- ☆196Oct 31, 2025Updated 9 months ago
- Comprehensive Assessment of Trustworthiness in Multimodal Foundation Models☆29Mar 15, 2025Updated last year
- ☆32Sep 15, 2024Updated last year
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- [ICLR 2024] The official implementation of our ICLR2024 paper "AutoDAN: Generating Stealthy Jailbreak Prompts on Aligned Large Language M…☆458Jan 22, 2025Updated last year
- 🔥🔥🔥 Detecting hidden backdoors in Large Language Models with only black-box access☆57Jun 2, 2025Updated last year
- [ICML 2024] Agent Smith: A Single Image Can Jailbreak One Million Multimodal LLM Agents Exponentially Fast☆127Mar 26, 2024Updated 2 years ago
- RAP: Retrieval-Augmented Planning with Contextual Memory for Multimodal LLM Agents☆26Aug 23, 2024Updated 2 years ago
- [NeurIPS 2025] BackdoorLLM: A Comprehensive Benchmark for Backdoor Attacks and Defenses on Large Language Models☆326Mar 13, 2026Updated 5 months ago
- [ICLR 2025] Official implementation for "SafeWatch: An Efficient Safety-Policy Following Video Guardrail Model with Transparent Explanati…☆45Feb 11, 2025Updated last year
- [ICLR24] Official Repo of BadChain: Backdoor Chain-of-Thought Prompting for Large Language Models☆56Jul 24, 2024Updated 2 years ago
- (NeurIPS 2025) Official implementation for "MJ-Bench: Is Your Multimodal Reward Model Really a Good Judge for Text-to-Image Generation?"☆51Jun 3, 2025Updated last year
- code of paper "Defending Against Alignment-Breaking Attacks via Robustly Aligned LLM"☆14Nov 17, 2023Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- ☆18Jun 15, 2021Updated 5 years ago
- Official Repo of Your Agent May Misevolve: Emergent Risks in Self-evolving LLM Agents☆92Jun 2, 2026Updated 2 months ago
- [USENIX Security 2025] Topic-FlipRAG: Topic-Orientated Adversarial Opinion Manipulation Attacks to Retrieval-Augmented Generation Models☆19Jun 21, 2025Updated last year
- [AAAI 2026] Official implementation of "Joint-GCG: Unified Gradient-Based Poisoning Attacks on Retrieval-Augmented Generation Systems".☆19Mar 23, 2026Updated 5 months ago
- Official implementation of the WASP web agent security benchmark☆98Apr 13, 2026Updated 4 months ago
- ☆45May 29, 2026Updated 3 months ago
- A reading list for large models safety, security, and privacy (including Awesome LLM Security, Safety, etc.).☆2,070Updated this week